OMFW 2012: Analyzing Linux Kernel Rootkits with Volatility

Published October 12, 2012

Andrew Case

This presentation went over a number of the new Linux plugins and showed how to use them when investigating Linux kernel rootkits. All of the plugins and functionality shown is part of the 2.2 Volatility release.

Author/Presenter: Andrew Case / @attrc 

Direct Link: Analyzing Linux Kernel Rootkits with Volatility

( X docs.google.com/file/d/0B_z_5NVxqgMKTDBYNXptclpIY1U/preview)

Discover more from The Volatility Foundation - Promoting Accessible Memory Analysis Tools Within the Memory Forensics Community

Subscribe now to keep reading and get access to the full archive.

Continue reading